Primary SID

The Primary Security Identifier (SID) enables Pointsharp IdP to extract and map the Primary SID from user attributes or external sources, into SAML assertions or tokens issued by the IdP. This functionality ensures seamless interoperability with systems that require the Primary SID for authentication, authorization, or auditing, such as Microsoft Active Directory-integrated environments.

Purpose:

  • Retrieves the Primary SID for authenticated users.

  • Adds the Primary SID as a SAML attribute or token claim, configurable per client or realm.

  • Supports flexible mapping strategies to fit various enterprise identity scenarios.

  • Supports integration with applications and services that rely on Windows identifiers.

The mapper enables integration with environments where the Primary SID is required as an identity attribute, such as hybrid or federated identity setups.